Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

How to turn on PDM on PIX 506E

Status
Not open for further replies.

MichaelDay

IS-IT--Management
May 1, 2003
98
US
I do a show version on my PIX as below:

Cisco PIX Firewall Version 6.1(4)
Cisco PIX Device Manager Version 1.1(2)

Compiled on Tue 21-May-02 08:40 by morlee

BlackHole up 34 days 3 hours

Hardware: PIX-506E, 32 MB RAM, CPU Pentium II 300 MHz
Flash E28F640J3 @ 0x300, 8MB
BIOS Flash AM29F400B @ 0xfffd8000, 32KB

0: ethernet0: address is 000b.5fea.c1c5, irq 10
1: ethernet1: address is 000b.5fea.c1c6, irq 11

Licensed Features:
Failover: Disabled
VPN-DES: Enabled
VPN-3DES: Disabled
Maximum Interfaces: 2
Cut-through Proxy: Enabled
Guards: Enabled
Websense: Enabled
Inside Hosts: Unlimited
Throughput: Limited
ISAKMP peers: Unlimited

----------------------------
fromt eh information above, do I know that I have PDM installed? If not How do I turn on PDM? Because I can not access to PDM through web-based
 
Yes.. you have the PIX Device Manager Version 1.1(2)installed with PIX Firewall Version 6.1(4). You should be able to access the PDM for the above version with Java installed on your browser by giving the inside network address. Remember to use https:\\ not http:\\.

I would recommend that you upgrade your pix 506E to the following

Cisco PIX Firewall Version 6.3(5)
Cisco PIX Device Manager Version 3.0(4)

I am new to the world of pix, so if I am wrong I am sure there will post to correct me.
 
Thanks for your help. Below is my configuration:

------------------------------------------
logging console debugging
interface ethernet0 10baset
interface ethernet1 10baset
mtu outside 1500
mtu inside 1500
ip address outside 24.155.89.91 255.255.255.248
ip address inside 192.168.1.1 255.255.255.0
ip audit info action alarm
ip audit attack action alarm
pdm location 192.168.1.2 255.255.255.255 inside
pdm history enable
arp timeout 14400
global (outside) 1 24.155.89.93
------------------------------------
by looking at pdm location, my PDM IP is 192.168.1.2 is that right?

So I should access my PDM from web like right?

I trie dthat and it does not display the page
 
No it would be https:\\192.168.1.1, your inside interface ip (ip address inside 192.168.1.1 255.255.255.0)
 
I am sure you pdm is enabled but try

http server enable
http 192.168.1.55 255.255.255.0 inside (Replace ip and subnet mask with the ip address of the terminal you are using to access the pdm.

To allow PDM access to all users, use the IP address of 0.0.0.0 with a network mask of 0.0.0.0.

Make sure jave is installed

If this does not work, I think you need to at least upgrade your pdm to 2.1.
 
The only PC that you can access the PDM is 192.168.1.2
which is controlled by this statement in your PIX
pdm location 192.168.1.2 255.255.255.255 inside

If that isn't your PC add another statement like the one above to include your address

Norm
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top